Medium severity4.6NVD Advisory· Published Nov 24, 2025· Updated Jun 17, 2026
CVE-2025-60917
CVE-2025-60917
Description
A reflected cross-site scripting (XSS) vulnerability in the /overview/network/ endpoint of Austrian Archaeological Institute Openatlas before v8.12.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the color parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: <8.12.0
Patches
Vulnerability mechanics
References
2- www.sec4you-pentest.com/schwachstelle/openatlas-schwachstelle-xss-in-farb-feldern-ort/nvdThird Party Advisory
- www.sec4you-pentest.com/schwachstellen/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.